Key | Value |
---|---|
MD5 | 7C9B44207585B4A879BE199FFA672DED |
PackageArch | x86_64 |
PackageDescription | YARA is a tool aimed at helping malware researchers to identify and classify malware samples. With YARA you can create descriptions of malware families based on textual or binary patterns contained on samples of those families. Each description consists of a set of strings and a Boolean expression which determines its logic. Let's see an example: |
PackageMaintainer | https://bugs.opensuse.org |
PackageName | libyara-devel |
PackageRelease | lp152.1.3 |
PackageVersion | 3.7.1 |
SHA-1 | B39BD72040C5D352E2B46FB6205C6F0615D5753E |
SHA-256 | 5F2515778FDD9D5C496F7A83EF51546170652F293505605C9F85BB370C34CA3C |
hashlookup:children-total | 33 |
hashlookup:trust | 50 |
The searched file hash includes 33 children files known and seen by metalookup. A sample is included below:
Key | Value |
---|---|
FileName | ./usr/include/yara/modules.h |
FileSize | 10876 |
MD5 | 3473EA26887DC672976E71D14FC3CC5A |
SHA-1 | 0996A1BD4D3F24B152132AD7256011312A295107 |
SHA-256 | 3AB1260CCC22869C9553300FF2EA0B7FCE32F0C239F979DBC16F457DDAD6EB1F |
SSDEEP | 192:HOrp8t6ZR3A3Zaq2lX6SNn25s1ST7w5D0+W0CbHTc0/ig:uritOBaZzyRNn25swT7w5YUsJZ |
TLSH | T18F22784CACB1F1A5055600A35A767819C282871321942EC574FECAFCBFB145E68FB9FD |
tar:gname | bin |
tar:uname | root |
Key | Value |
---|---|
FileName | ./usr/share/doc/yara-3.7.1/CONTRIBUTORS |
FileSize | 1508 |
MD5 | 502A04F26F15A3D09BD1A9A514687424 |
SHA-1 | 0AB7000490C07C3A84F276EE1585859B033286CB |
SHA-256 | DBAF5C266376A540ADD9C992DD22725E2AB9979FA8F461DDF047CCBC0365E7C1 |
SSDEEP | 24:q0J6h41xNbEIU2cUQoMWH6lIUWWPnQvf+y4f9WHk0EBbzPJnecJjlEy2KdKMO2na:ZYhQx5EIYGXKo+y4fQElzPocEy2KDhQj |
TLSH | T1A331B787BD4F3B564C8C44293A1FB0EE1A34E47D5268D490745C665C2B8585893E78E0 |
Key | Value |
---|---|
FileName | ./usr/include/yara/types.h |
FileSize | 12830 |
MD5 | 8060C3DF14D9B62180FA3DC989347674 |
SHA-1 | 21AFDB1688DC1A570CA715680E8D0F6279202E02 |
SHA-256 | DB1860053B4BE92748F2B21734D0EFF601284A2B3CAFDCD020C344C8765B1782 |
SSDEEP | 384:dritOBaZo4IbdHad07MB0ecn+u9vF5S1vFtQYoEqmusVXzoXj:dpaZQKtzoT |
TLSH | T1364254122EB1EA8611E3092491CB30D51653D13F22BCAD8D308EDBA52F9155DDBF27ED |
tar:gname | bin |
tar:uname | root |
Key | Value |
---|---|
FileName | ./usr/include/yara/hash.h |
FileSize | 2816 |
MD5 | 6185A7DFB518B4B7878D6E08ECC4556B |
SHA-1 | 288B3C111CE5EDAC49192869EECBFFB00641D58A |
SHA-256 | 953E1871DFC53A5CCE888664CC2ECC2856B44F297856CF7D1A9DC262A9B3CBED |
SSDEEP | 48:4AOOrpoJrJzuzP96432sv832s3EsIq3tYHHCtGPGGxG0GGD1cNH9DWYqkWYq0dQd:KOrpoJrJzuZR3A3zVfanCQPGG00GGDUu |
TLSH | T19251749B17202252CDD08A517F0A79C15109F02B7F52B93074A7F3148FEBA5F64776B4 |
tar:gname | bin |
tar:uname | root |
Key | Value |
---|---|
FileName | ./usr/include/yara/exefiles.h |
FileSize | 1756 |
MD5 | B9A77040BE5A879CB3CDB4A076CA1AD5 |
SHA-1 | 3305910F805C6518032F3C59AA10ED922A67B02B |
SHA-256 | 1522613809D3DF11E9095371E835D0A77C9CA2B41F6FDE7C7ED8E018A94D1FB0 |
SSDEEP | 48:JAOOrpoJrJzuzP96432sv832s3EsIq3tYHuzucXs:LOrpoJrJzuZR3A3zVfaOu |
TLSH | T15931A757114017B319E20792669A7AC4B459D02EBB27AE011CECE3549B7783EC8F7045 |
tar:gname | bin |
tar:uname | root |
Key | Value |
---|---|
FileName | ./usr/share/doc/packages/yara/AUTHORS |
FileSize | 563 |
MD5 | 2204A7F7E86FEA045978AD97F369A032 |
SHA-1 | 4356F97067D25D246B74AB86A7B06EA14D8B668A |
SHA-256 | BF79E76DB1F1B88D6CF4387BA6B8B880B364E9B7E7013742BABA55BCCB854380 |
SSDEEP | 12:q0xBi95VNZTnVGTQ/GL5cVidsFmLKTklgMnYc5WRMTR8g1BL:q0xU/PZTnVGTQ/CyWEXKgQJWsP |
TLSH | T106F0E187E3DF3919A11819BB320EC9878F1DE9DD8738F054D4AC52991A8A805B99B9C0 |
Key | Value |
---|---|
FileName | ./usr/include/yara/compiler.h |
FileSize | 6355 |
MD5 | 9D3D87362EB3DBE50D6A0A90B3F5C356 |
SHA-1 | 572B73E08C3C5B03C3C53A35ED661465F5D50085 |
SHA-256 | 1F969217F7FFFC8FE10C86B58B2DD797D1F2D32911EF1DB2C0DB55D41A091344 |
SSDEEP | 96:KOrpoJrJzuZR3A3zVfaoJ0vTisvP9FLP2aV8VWCbnIQ+oxF6TJRyyEvPPhDHj1j+:KOrp8t6ZR3A3Zahd/8VWDXCP36 |
TLSH | T1AAD1541C8E2C1962C55016916A9B75929109F02F3E60F84C7B9FB22C9F7A11FC5B7DEC |
tar:gname | bin |
tar:uname | root |
Key | Value |
---|---|
FileName | ./usr/include/yara/rules.h |
FileSize | 4267 |
MD5 | 50F7B05BACBEB26D936D37400D9D67FD |
SHA-1 | 579858E3E095EFA09DC9C3B45C5464FC13A6F59F |
SHA-256 | 92AEAB6DCD6D644E93B5763F18100BE0C5CFA7EDA9C793C35D8E45CBDCB43632 |
SSDEEP | 96:HOrpoJrJzuZR3A3zVfaERRvkkRer3bswCiudSTppXXE:HOrp8t6ZR3A3ZawnivPE |
TLSH | T1F091539A8E7052828DD07A61DD0EB1007409E53F3FB1B8957EEEF1544FA903EA8FE548 |
tar:gname | bin |
tar:uname | root |
Key | Value |
---|---|
FileName | stream.h |
FileSize | 2123 |
MD5 | A950889A997B783AEDD0FC4594039FB4 |
RDS:package_id | 222721 |
SHA-1 | 5A698C565BA3F5E7397D805B2BFA95886860C013 |
SHA-256 | 0FC070610F9394C0E34BB6A0E8E3F5F6213909BBA4AB6925D7C03A4387349CA2 |
SSDEEP | 48:6AOOrpoJrJzuzP96432sv832s3EsIq3tYHUCoyyQF6FSs:MOrpoJrJzuZR3A3zVfa0CoyHF6Fb |
TLSH | T1B9414497121417A33CD50A92AA8BF6C0644BA11B3F2BAF043AD5E2512F6F01DE8B6570 |
insert-timestamp | 1727040688.9120274 |
source | RDS.db |
tar:gname | root |
tar:uname | root |
Key | Value |
---|---|
FileName | ./usr/include/yara.h |
FileSize | 1771 |
MD5 | 38347066562727AEB76CF41E117EA489 |
SHA-1 | 5ADA3FB48586F64ECC746C678814A1D5E418EAE7 |
SHA-256 | B8DC751C1EB73811922C9B8E3A0F7589800C20A42D0673124FC8C2A9C4186842 |
SSDEEP | 48:MAOOrpoJrJzuzP96432sv832s3EsIq3tYHJ5I1hE88mIFd:WOrpoJrJzuZR3A3zVfaFn |
TLSH | T1B331553695580B6BC5A206E17197A5C0A08EE01F3B375901189DF384A7674BEB8FB185 |
tar:gname | bin |
tar:uname | root |